π©πͺ
FeG Deutschland
2026-09-16 15:55:13
(1 hour ago)
Looking for CMS/PHP/SQL vulnerablilities/excessive crawling - 1247
Exploited Host
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 14:42:39
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.117.205 (205.117.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.117.205 (205.117.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 10:42:34.007475 2026] [security2:error] [pid 17486:tid 17486] [client 34.18.117.205:56402] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harveyalperin.com"] [uri "/.git/config"] [unique_id "aqqq2vO8XhpAbw7jNlfRwwAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π¨π¦
john doe
2026-09-16 14:26:33
(3 hours ago)
SentinelBot: Secret-path hunting (5 distinct paths): Env File Hunting (score: 59)
Bad Web Bot
π³π±
Alt255
2026-09-16 13:41:13
(3 hours ago)
[ti-03ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Exam ...
show more
[ti-03ov] Web exploit scanning: 1 suspicious requests detected by fail2ban jail apache-scanner. Example: 34.18.117.205 - - [16/Sep/2026:15:41:07 +0200] "GET /.git/config HTTP/1.1" 301 528 "-" "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 13:36:37
(3 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.117.205 (205.117.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.117.205 (205.117.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:36:32.376819 2026] [security2:error] [pid 2717723:tid 2717723] [client 34.18.117.205:44138] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "hartflicker.com"] [uri "/.git/config"] [unique_id "aqqbYK0xdm5YaMpeUsPm6QAAAAY"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Savvii
2026-09-16 13:33:18
(3 hours ago)
20 attempts against mh_ha-misbehave-ban on ceres
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
Lee Daniel
2026-09-16 13:09:01
(4 hours ago)
34.18.117.205 - - [16/Sep/2026:09:09:01 -0400] "GET /.env HTTP/1.1" 403 6284 "-" "Mozilla/5.0 (Macin ...
show more
34.18.117.205 - - [16/Sep/2026:09:09:01 -0400] "GET /.env HTTP/1.1" 403 6284 "-" "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/131.0.0.0 Safari/537.36"
...
show less
DDoS Attack
Web Spam
Email Spam
Port Scan
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 13:06:19
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.117.205 (205.117.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.117.205 (205.117.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 09:06:11.433541 2026] [security2:error] [pid 31835:tid 31835] [client 34.18.117.205:43546] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harrygant.com"] [uri "/.git/config"] [unique_id "aqqUQ8jHYE75TNp2aTLXWQAAAAk"]
show less
Brute-Force
Bad Web Bot
Web App Attack
πΊπΈ
TPI-Abuse
2026-09-16 12:38:58
(4 hours ago)
(mod_security) mod_security (id:210492) triggered by 34.18.117.205 (205.117.18.34.bc.googleuserconte ...
show more
(mod_security) mod_security (id:210492) triggered by 34.18.117.205 (205.117.18.34.bc.googleusercontent.com): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Sep 16 08:38:51.098763 2026] [security2:error] [pid 27983:tid 27983] [client 34.18.117.205:54626] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "harrisconcepts.com"] [uri "/.git/config"] [unique_id "aqqN21GkzHQo8jOdw6NKHQAAAAs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
π³π±
Site.eu
2026-09-15 16:56:58
(1 day ago)
Excessive 404/403 errors
Brute-Force
πΈπͺ
vaia.cloud
2026-09-15 16:50:03
(1 day ago)
crowdsecurity/http-admin-interface-probing
Brute-Force
Web App Attack